CVE-2013-4137
11.10.2013, 22:55
Multiple SQL injection vulnerabilities in StatusNet 1.0 before 1.0.2 and 1.1.0 allow remote attackers to execute arbitrary SQL commands via vectors related to user lists and "a particular tag format."
| Vendor | Product | Version |
|---|---|---|
| status | statusnet | 1.0.0 |
| status | statusnet | 1.0.1 |
| status | statusnet | 1.1.0 |
𝑥
= Vulnerable software versions
References